<title>OpenTTD: Execution of arbitrary code</title>
Multiple buffer overflows in OpenTTD might allow for the execution of
arbitrary code in the server.
<announced>March 07, 2009</announced>
<revised>March 07, 2009: 01</revised>
OpenTTD is a clone of Transport Tycoon Deluxe.
Multiple buffer overflows have been reported in OpenTTD, when storing
long for client names (CVE-2008-3547), in the TruncateString function
in src/gfx.cpp (CVE-2008-3576) and in src/openttd.cpp when processing a
large filename supplied to the "-g" parameter in the ttd_main function
An authenticated attacker could exploit these vulnerabilities to
execute arbitrary code with the privileges of the OpenTTD server.
# emerge --sync
# emerge --ask --oneshot --verbose &quot;&gt;=games-simulation/openttd-0.6.3&quot;</code>
<uri link="">CVE-2008-3547</uri>
<uri link="">CVE-2008-3576</uri>
<uri link="">CVE-2008-3577</uri>
